Darktrace AI’s Antigena helps stop ransomware attack at Dordogne GHT
Ryuk had previously overthrown city councils and attacked over 200 US hospitals in 2021
French hospital group Dordogne Groupements Hospitaliers de Territoire (Dordogne GHT) has successfully contained and stopped a ransomware attack utilizing Darktrace AI’s autonomous response technology Antigena.
In 2021, Dordogne GHT installed Darktrace's artificial intelligence (AI)-based detect, respond technologies to guard against threats in all 11 of its hospitals, particularly for medical and corporate devices pertaining to accident and emergency departments.
The system was soon put to test when Dordogne GHT encountered a notorious ransomware strain called Ryuk, which targets critical public sectors organizations worldwide.
Russian cybercriminal group Wizard Spider has been attributed to creating the ransomware. Ryuk essentially combines advanced encryption techniques before requesting a high ransom for a private decryption key. Ryuk is also one of the first ransomware strains to encrypt network drives and resources.
Darktrace AI was alerted to the first signs of the attack via some basic .dat files being downloaded onto one of the hospital’s devices through an unknown IP address. Using AI, Darktrace’s Antigena thwarted the breach, saving medical devices from being corrupted.
"At a time when national cybersecurity agencies are urging organizations to be hyper-vigilant and lock down their systems, we can be in little doubt that defenders of healthcare systems will be working to keep the bad guys out," commented Justin Fier, VP of tactical risk and response at Darktrace.
"Autonomous response technology that uplifts human security teams by allowing them to make strategic decisions while the AI stops the attack before it causes disruption is critical in defending organizations vital to everyday life," added Fier.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
-
Pure Storage’s expanded partner ecosystem helps fuel Q3 growthNews The data storage vendor has announced a 16% year-over-year revenue hike in its latest earnings report, driven by continued channel and product investment
-
Partners have been ‘critical from day one’ at AWS, and the company’s agentic AI drive means they’re more important than everNews The hyperscaler is leaning on its extensive ties with channel partners and systems integrators to drive AI adoption
-
15-year-old revealed as key player in Scattered LAPSUS$ HuntersNews 'Rey' says he's trying to leave Scattered LAPSUS$ Hunters and is prepared to cooperate with law enforcement
-
The Scattered Lapsus$ Hunters group is targeting Zendesk customers – here’s what you need to knowNews The group appears to be infecting support and help-desk personnel with remote access trojans and other forms of malware
-
Impact of Asahi cyber attack laid bare as company confirms 1.5 million customers exposedNews No ransom has been paid, said president and group CEO Atsushi Katsuki, and the company is restoring its systems
-
The US, UK, and Australia just imposed sanctions on a Russian cyber crime group – 'we are exposing their dark networks and going after those responsible'News Media Land offers 'bulletproof' hosting services used for ransomware and DDoS attacks around the world
-
A notorious ransomware group is spreading fake Microsoft Teams ads to snare victimsNews The Rhysida ransomware group is leveraging Trusted Signing from Microsoft to lend plausibility to its activities
-
Volkswagen confirms security ‘incident’ amid ransomware breach claimsNews Volkswagen has confirmed a security "incident" has occurred, but insists no IT systems have been compromised.
-
The number of ransomware groups rockets as new, smaller players emergeNews The good news is that the number of victims remains steady
-
Teens arrested over nursery chain Kido hacknews The ransom attack caused widespread shock when the hackers published children's personal data